Sign inSign up
AWS CLI

dhi.io/awscli

AWS CLI 2.x

CIS
linux/amd64
debian 13
Tags:

2, 2-debian, 2-debian13, 2.36, 2.36-debian, 2.36-debian13, 2.36.46, 2.36.46-debian, 2.36.46-debian13

Index digest:

sha256:7aea0434b10fa282f0635b7d6cb5c7c5d0c611b5417c9a7b7e4ba1572aae0be9

Manifest digest:

sha256:388b9334e5aff4d3b7cd70f41ea14805c91a3f5350077c55cddb0fb69eff72ba

Size

64.84 MB

Last pushed

15 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/awscli:2

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/awscli:2 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/awscli@sha256:03237f8434ce8274386aaab6fb37489a647e354f3024aedd03a7b02973ad2f76
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/awscli@sha256:bf949105a6d87a4a1021c0cf5fc5e3a8b638e28477ce460cd1e6e5a4afc63384
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/awscli@sha256:9faa4cdbde90bece2813cd0712694ec1de52e1939853d5e68f326ec665c28aa8
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/awscli@sha256:60c4bd766c5cc9775435910de24bb08a43738fe2e08e124ac3dfc7c0216d5354
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/awscli@sha256:77096c3b45b05518d84a79645c6ce7d0b9e55f3ddee49eb1f5325fa00ed3272a
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/awscli@sha256:816cb0075226d2796e29059538387150e8fb2853a3cf33a687c6b47c9194ea41
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/awscli@sha256:c327ceb4879f6700a3be8f68d0782907a7717e7a5be8fe4359fe24935238b4d8
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/awscli@sha256:ac38e9cd4171f9c48f4cac97625f23e615aacfc4c984dc2e07d4bb512e45f204
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/awscli@sha256:5c127947e3fae87d957208d4e30abe4c6f771f8f1dcd6390a1d4749027ab8945
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/awscli@sha256:bbe946f84d863946c15adc3c9f73600ae164e353f28c6fd8e8e95bcc429694db
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/awscli@sha256:9a26667f56ef980cc9a306f3e09818ed3cce2f3d720eea0c8ad2e142b356f417
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/awscli@sha256:8ebd43d825ff51c12b369c2bb9114833ecd9cbb359cc2a16e638dd0fda72f124
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/awscli@sha256:f5bed5f2465ceea0ccb2b4f3cbae5c8511154b583eac901360f0a7045dc0e1be
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/awscli@sha256:f33c2dae2e8b931e54ed37a386c0364abcbe937a25a36f22762d739dd93b0426
SPDX SBOMhttps://spdx.dev/Documentdhi.io/awscli@sha256:4d27895ef7fe350b0392c925bc9a3673b79e63dff8846acd5d16f0bb0b13b4a9